Mattermost fails to validate links on external websites when constructing a preview for a linked website, allowing an attacker to cause a denial-of-service by a linking to a specially crafted webpage in a message.
2023-06-16T10:15:09.270
2024-11-21T07:59:18.110
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mattermost | mattermost | ≤ 7.8.3 | Yes |
Application | mattermost | mattermost | ≤ 7.9.2 | Yes |
Application | mattermost | mattermost | 7.10.0 | Yes |